Skip to main content
Blaxel does not currently provide a built-in multi-factor authentication (MFA) mechanism. Enforce MFA through your external authentication provider instead.

MFA support

Connect your identity provider, such as Okta, Azure AD, Google Workspace, or OneLogin, and enforce MFA at the identity provider level. When SAML is active and enforced for your account, it becomes the only allowed login method for your domain. See SAML and Directory Sync for configuration details.

Compliance considerations

Use these controls to support HIPAA and SOC 2 compliance requirements:
  • SAML SSO with identity provider-enforced MFA is the strongest option and is recommended for enterprise compliance
  • Directory Sync (SCIM) automates user provisioning and deprovisioning based on your identity provider directory, supporting access lifecycle management requirements
  • OAuth providers such as Google or GitHub satisfy most MFA requirements when MFA is enabled at the provider
SOC 2 and HIPAA audit reports are available upon request.

Resources

SAML and Directory Sync

Configure SAML SSO and automated provisioning through SCIM.

Contact Blaxel

Request compliance reports or help with enterprise authentication.
Last modified on October 5, 2026